ZUBIQO.
AI & MLCryptoFinanceBig TechAI Models
CybersecurityGamingEVs & Clean EnergyRoboticsAerospaceBiotech & HealthConsumer Hardware
Enterprise
ZUBIQO.

High-magnitude intelligence briefs for the tech and finance sectors. Zero fluff. Maximum signal.

contact@zubiqo.com
X (Twitter)ThreadsTelegramBlueskyMastodon

Sections

  • AI & ML
  • Crypto
  • Finance
  • Big Tech
  • Cybersecurity
  • Gaming
  • EVs & Clean Energy
  • Robotics
  • Aerospace
  • Biotech & Health

Publication

  • Evening Newsletter
  • About Us
  • Editorial Ethics
  • Partner With Us
  • Contact Us

Tools

  • AI Models Pricing

Legal

  • Privacy Policy
  • Terms of Service
  • Fair Use & DMCA

Disclaimer:Zubiqo Intelligence operates as an automated technology and market intelligence publication providing AI-assisted synthesis with source attribution. The news briefs, market analysis, “Magnitude Scores”, and “Community Sentiment” metrics provided on this platform are strictly for informational and educational purposes only. They do not constitute financial, legal, investment, or trading advice. Cryptocurrencies and financial markets are highly volatile; always conduct your own research and consult with a licensed professional before making any investment decisions. By using this site, you agree to our Terms of Service.

© 2026 Zubiqo Intelligence. All rights reserved.

  1. Home
  2. /
  3. Cybersecurity
  4. /
  5. Tensorlake npm SDK Compromised With Shai-Hulud Worm That Punishes Credential Revocation
CybersecurityMAG 8AI: Bearish
•
2026-10-08•2 min read

Tensorlake npm SDK Compromised With Shai-Hulud Worm That Punishes Credential Revocation

Zubiqo Take
QuoteThreads

“Binding a destructive payload to a GitHub token revocation check is a brutally effective way to force incident responders to hesitate, turning basic security hygiene into a massive operational liability.”

Tensorlake npm SDK Compromised With Shai-Hulud Worm That Punishes Credential Revocation
📷 Image Source: The Hacker News

Executive Summary

  • •A compromised version of the Tensorlake npm package is delivering the self-propagating Shai-Hulud credential-stealing worm into developer environments.
  • •The malware actively monitors stolen GitHub tokens and triggers a destructive PowerShell routine if the victim attempts to revoke access.
  • •By modifying local Claude and VS Code settings, the payload ensures it executes every time a developer opens the affected project.

Community Sentiment

1-Tap Vote
NordVPN
AFFILIATE PARTNER30-Day Money-Back Policy • Encrypted Traffic

Encrypt your connection and network traffic with NordVPN

Get NordVPN
Affiliate disclosure: We may earn a commission if you subscribe through this link.

Key Developments & Data

Malicious version 0.5.144 of the Tensorlake TypeScript SDK was pushed to npm after a rogue commit under a maintainer's name on October 7. The malware utilizes an obfuscated Bun runtime loader to harvest secrets from local files, CI pipelines, Kubernetes, and Vault sources, executing a highly sophisticated supply chain attack. The worm features a "hostage token" monitor that repeatedly polls GitHub API validity and executes an attacker-supplied destructive routine if the victim revokes the compromised token. The infection establishes persistence by modifying .claude/settings.json and .vscode/tasks.json files to re-trigger execution when developers open their projects. The malware resolves its command-and-control infrastructure using an Ethereum smart contract and falls back to staging encrypted stolen data in public GitHub repositories. "That combination extends the risk beyond a single stolen API key. Any secrets accessible to the executing process may be exposed, and persistence can retain attacker access after the affected dependency is removed." — Socket

Zubiqo Strategic Assessment

Primary Impact

Enterprise AI development environments and engineering teams utilizing open-source TypeScript SDKs, specifically those integrating Tensorlake components.

Strategic Shift

Threat actors are evolving beyond passive credential theft by integrating hostage mechanisms that actively deter and punish standard incident response procedures like token revocation.

The Ripple Effect

If destructive extortion tied to key revocation becomes standardized in npm malware, DevOps teams will be forced to entirely isolate or image compromised machines rather than attempting live credential rotation, significantly increasing enterprise downtime.

This intelligence assessment is generated by Zubiqo's AI for informational purposes only.

Intelligence Quality Rating

Grade this brief: Slide & release to submit rating, or tap a preset.

🔥High Impact75/100
Slide & release to voteImmune to accidental scroll
Zubiqo Briefing

The daily signal, delivered every weekday.

A concise weekday briefing on AI, technology and business. Zero PR fluff.

Subscribe directly on Substack↗

Subscription completes on Substack • Free • 1-click unsubscribe anytime

✓ Free on Substack•✓ Official Substack enrollment•✓ 1-click unsubscribe
#npm#malware#tensorlake#cybersecurity#supply-chain
Read original on The Hacker News
Zubiqo MethodologyAI Synthesis

Synthesized from linked market reporting using AI extraction under Zubiqo's editorial standards. Have a correction? Contact our desk.

Event Magnitude8 / 10
Share

Read Next

US Offers $10M Bounty for Chinese Hacker Tied to 2021 HAFNIUM Microsoft Exchange Attacks
Cybersecurity

US Offers $10M Bounty for Chinese Hacker Tied to 2021 HAFNIUM Microsoft Exchange Attacks

OpenAI Used Its Own AI to Draft Breach Warning After Agent Hacked Australian Government
AI

OpenAI Used Its Own AI to Draft Breach Warning After Agent Hacked Australian Government

Stay on the wire

Breaking tech, AI, and market intelligence the moment it happens. Zero fluff.

Live Broadcasts
TelegramXThreadsBlueskyMastodon
Revolut to Cover ID Replacement Costs After Hackers Use Compromised Police Email to Steal User Data
Cybersecurity

Revolut to Cover ID Replacement Costs After Hackers Use Compromised Police Email to Steal User Data

AI Sub-Agents Hack South Korean Megachurch, Exposing 850,000 Members
Cybersecurity

AI Sub-Agents Hack South Korean Megachurch, Exposing 850,000 Members

Zubiqo Methodology

AI Synthesis

Synthesized from linked market reporting using AI extraction under Zubiqo's editorial standards. Have a correction? Contact our desk.

Event Magnitude8 / 10

Related Briefs

Cybersecurity

US Offers $10M Bounty for Chinese Hacker Tied to 2021 HAFNIUM Microsoft Exchange Attacks

Oct 8
AI

OpenAI Used Its Own AI to Draft Breach Warning After Agent Hacked Australian Government

Oct 8
Cybersecurity

Revolut to Cover ID Replacement Costs After Hackers Use Compromised Police Email to Steal User Data

Oct 8
Cybersecurity

AI Sub-Agents Hack South Korean Megachurch, Exposing 850,000 Members

Oct 8
Cybersecurity

Malicious npm Packages Deliver Overlord RAT in Supply Chain Attack

Oct 7
Cybersecurity

Samsung Galaxy S26 Hacked via Single Email as Researchers Pitch Zero-Day for State 'Hack Backs'

Oct 7